Privacy Policy
This page explains how GaliVue handles information needed to provide professional photographer accounts, private client selection and final-file delivery.
Information used for photographer accounts
Photographer accounts may include a name, professional display name, email address, country, password hash, professional billing information supplied by the account holder, plan status and project information. Billing details are used only where needed to operate the account, payments, invoices and related support.
Project and client information
Photo projects may include client names or email addresses entered by the photographer, preview files, final delivery files, selection choices, filenames and project activity needed to operate the service. Photographers should only provide information and files they are entitled to process and share.
Private client galleries
Clients do not need a GaliVue account. A client opens a private token link supplied by the photographer. GaliVue stores selection and delivery status needed to complete the project. Private links may expire, be revoked or be replaced.
Anonymous client reviews
The optional two-question client review is designed without a name or email field. One review is associated with the private delivery record so duplicate responses can be prevented.
How information is used
Information is used to create and secure accounts, provide requested workflow and delivery features, maintain subscriptions and billing, send operational messages, respond to support requests, prevent abuse and maintain service reliability. Information is not used to create public client profiles.
Infrastructure and service providers
GaliVue uses specialised infrastructure providers for application processing, database records and file storage. A specialised payment processor handles subscriptions and recurring add-on payments through secure hosted payment and billing tools. Operational email is sent through configured email-delivery services. These providers process only the information needed for their role in providing the service.
Account verification and recovery
GaliVue uses short-lived codes for photographer email verification and password recovery. Verification and reset codes are stored as hashes, expire after a limited period and are removed after expiry or consumption. A successful password reset invalidates older photographer sessions.
Necessary cookies
GaliVue uses only first-party cookies needed for authentication, security and a user-requested privacy preference. galivue_user keeps a verified photographer signed in and galivue_admin protects the private Admin session; both are HttpOnly, SameSite=Strict session cookies with a maximum lifetime of 12 hours and are cleared on logout. If you turn off public audience measurement, galivue_analytics_optout stores that choice for up to one year so GaliVue can honour it. Private client galleries do not require a client account. GaliVue does not use marketing or advertising cookies in the current service.
First-party audience measurement
GaliVue uses its own first-party audience measurement on public website pages to understand traffic, page views, broad country/region/city location, referral source, device type, browser category, operating system and meaningful public-page actions such as pricing or sign-up clicks. Private client galleries, delivery links, the photographer workspace and the Admin panel are excluded. GaliVue does not store raw visitor IP addresses or full browser User-Agent strings in the analytics database; a privacy-limited derived identifier is used only to estimate aggregate visitors and returning traffic. Audience-measurement records are automatically removed after 390 days. Bot traffic is separated from human traffic. Browser Global Privacy Control or Do Not Track signals disable this public analytics collection when received.
Audience measurement choice
You can turn GaliVue public audience measurement off or back on at any time on this device. Turning it off does not affect sign-in, private galleries, final delivery or account features.
Retention and deletion
Project files and related workflow records are retained while needed for the active project, delivery, account or configured expiry period. Photographers can archive projects or move them to Trash, which includes a safety period before permanent deletion is allowed. A photographer can also request permanent account deletion from the account settings; GaliVue requires a deletion reason, email verification code and final confirmation before destructive account deletion begins. For an unresolved GaliVue subscription payment, a seven-day payment grace period applies before any automatic account deletion, and a successful payment cancels that deletion timer. GaliVue performs a final billing-status check before automatic deletion and defers deletion if billing status cannot be confirmed safely. Payment or other service providers may retain billing or transaction records they are required to keep, and GaliVue may retain limited records where necessary for legal, accounting, fraud-prevention or service-security purposes.
Privacy requests
For access, correction, deletion or other privacy questions relating to a GaliVue account or project, email privacy@galivue.com. To report a security issue or suspicious message, email security@galivue.com. A request may require reasonable verification before account or project information is disclosed or changed.